robodada,
I've been coming up with the same conclusions about the schema cache. AARGH!!!
I'm trying to use these techniques to query a Novell LDAP server that has no security integration with the IIS server running the ASP. "Ordinary" attributes such as cn, sn, description, etc. work fine...